US Government Export Control Directive Suspends Fable 5 and Mythos 5 for Foreign Nationals · history
Version 16
2026-06-21 18:16 UTC · 313 items
What
Fable 5 and Mythos 5 remain offline on June 21 — nine days since Anthropic disabled them globally [21][22]. The Pentagon has separately labeled Anthropic a 'supply chain risk' effective immediately [16], adding a DoD designation on top of the BIS export licensing requirement Commerce Secretary Lutnick formalized on June 17 [5]. President Trump stated on June 20 he no longer views Anthropic as a national security threat [15], but no formal reversal has followed, and the refund window for API usage credits has closed [18].
Why it matters
The Pentagon supply chain risk designation adds a second institutional front — DoD procurement risk on a distinct legal track from the BIS export licensing controls — while Trump's public softening remains detached from any formal policy reversal. Companies and international teams that moved to non-US AI providers or open-weight models during the nine-day outage are making structural decisions that are difficult to undo regardless of how the political question resolves.
Open questions
Trump stated on June 20 he no longer views Anthropic as a national security threat [15] — does this translate into formal action lifting the BIS licensing requirement and the Pentagon supply chain risk designation [16], or does it remain a public signal without policy follow-through?
The Pentagon has labeled Anthropic a 'supply chain risk' effective immediately [16] — when did this designation take effect relative to the BIS action, what specific DoD contracts or procurement does it affect, and does it operate independently of any eventual BIS reinstatement?
A single-sourced report suggests a reinstatement path via benchmark failure-rate tests rather than jailbreak elimination [23] — has this been corroborated, and does it represent a formal administration position or informal signaling?
Milk Road AI attributes the underlying conflict to Amodei's non-negotiable refusal to allow Claude for lethal applications [14] — which specific issue must be resolved for reinstatement: the jailbreak, the use-case policy, or both?
Narrative
On June 12, 2026, the US Commerce Department issued a directive requiring Anthropic to suspend Fable 5 and Mythos 5 for all foreign nationals, citing a jailbreak that bypassed classifier-based safeguards for cybersecurity, chemistry, and biology prompts [1]. Amazon researchers demonstrated the jailbreak, and Amazon CEO Andy Jassy personally briefed senior Trump administration officials in conversations that reporting confirms directly preceded the government action — against a company in which Amazon holds a major investment [2][3]. Unable to restrict access by nationality on short notice, Anthropic disabled both models globally on June 13 [1]. Commerce Secretary Lutnick told Amodei, when Amodei said the directive meant the models must go offline: 'That's the point' [4]. On June 17, Lutnick formally sent Amodei a BIS letter placing both models under export licensing requirements [5].
The technical basis for the directive is contested by independent experts. Katie Moussouris, the only outside expert given access to the government's report, assessed the triggering scenario — researchers used engineered code with deliberately planted fake vulnerabilities to extract patch-testing scripts through a multistep manual process — as 'the model working as intended' for cyberdefense [6][4]. Her firm Luta Security published a formal argument that the controls harm US cyber defense [7]. Zvi Mowshowitz argues the stated reinstatement path — fix the jailbreak — is technically impossible, since vulnerability identification and secure coding cannot be separated [8]. Research published in June 2026 confirms this: perfect jailbreak immunity is not achievable for any LLM [9]. Washington talks concluded June 16 without controls lifted; the US refused G7 allies and UK AISI special access [10][11].
The political dimension is explicit across multiple sources. An administration source framed reinstatement as requiring an 'attitude adjustment' rather than a specific technical fix [12], and multiple sources confirm the shutdown was partly motivated by political hostility toward Anthropic's leadership [4][13]. Milk Road AI frames the conflict as Amodei's consistent, non-negotiable refusal to allow Claude for lethal applications [14]. On June 20, Trump said in an Axios interview that he no longer views Anthropic as a national security threat, while acknowledging he had done so 'a week ago' [15] — but Lutnick's BIS letter remains active with no announced policy reversal. The Pentagon has separately labeled Anthropic a 'supply chain risk' effective immediately [16], extending the government's posture beyond Commerce Department controls into DoD procurement on a distinct legal track.
Nine days into the global outage, Alex Stamos reported that companies are signing backup contracts with non-US AI providers and deploying open-weight models in response to demonstrated US government political risk [4]. International teams, including Canadian operations, received no advance warning before access was cut [17], and the refund window for API usage credits has since closed [18]. Technology and national security leaders have characterized the situation as a 'messy public breakup' that harms both parties [19], and Nathan Lambert has argued the episode opens a governance era of technically shallow, politically motivated AI restrictions that open-source advocates are unprepared for [20].
Timeline
- 2026-06-12: Anthropic publicly releases Fable 5 and Mythos 5. [32][33]
- 2026-06-12: Amazon researchers demonstrate a jailbreak on Fable 5; Amazon CEO Andy Jassy briefs senior Trump administration officials whose conversations directly preceded the government action. [2][3][26]
- 2026-06-12: White House issues Anthropic a 90-minute takedown ultimatum with no stated details on the actual threat. [13]
- 2026-06-12: US Commerce Department issues an export control directive requiring Anthropic to suspend Fable 5 and Mythos 5 for all foreign nationals, citing the classifier-based jailbreak. [24][25][1]
- 2026-06-12: Commerce Secretary Lutnick tells Anthropic CEO Amodei 'That's the point' when Amodei says the directive means the models must go offline. [4]
- 2026-06-13: Anthropic disables Fable 5 and Mythos 5 globally after determining nationality-based restriction was not achievable on short notice. [1]
- 2026-06-14: Nathan Lambert argues the episode opens a governance era of technically shallow, politically motivated AI restrictions and warns open-source advocates are unprepared for similar controls within two years. [20]
- 2026-06-15: Semafor reports a China-linked group had accessed Mythos before the directive, raising model distillation concerns as a distinct driver of the government's action. [29]
- 2026-06-15: Anthropic meets with the Commerce Department; an administration source says reinstatement requires an 'attitude adjustment' rather than a specific technical fix. [12]
- 2026-06-16: Katie Moussouris assesses the triggering behavior as 'the model working as intended' for cyberdefense; Luta Security publishes a formal argument that the controls harm US cyber defense. [6][7]
- 2026-06-16: Anthropic's Washington talks conclude without controls lifted; US refuses G7 allies and UK AISI special access. [10][11]
- 2026-06-17: Commerce Secretary Lutnick sends a formal BIS letter to Anthropic CEO Amodei requiring a license before international export. [5]
- 2026-06-17: Alex Stamos reports companies are signing backup contracts with non-US AI providers and deploying open-weight models in response to demonstrated US government political risk. [4]
- 2026-06-18: Zvi Mowshowitz argues the government's stated reinstatement path — fixing the jailbreak — is technically impossible, since vulnerability identification and secure coding are inseparable. [8]
- 2026-06-19: Research confirms perfect jailbreak immunity is not achievable for any LLM, deepening expert consensus that the government's stated fix path has no solution. [9]
- 2026-06-19: Zvi Mowshowitz's capabilities review confirms Fable 5 as state-of-the-art across benchmarks, with GPQA Diamond at 94%. [28]
- 2026-06-20: In an Axios interview, President Trump states he no longer views Anthropic as a national security threat, while acknowledging he had held that view 'a week ago.' [15][14]
- 2026-06-20: Technology and national security leaders publicly characterize the dispute as a 'messy public breakup' that harms both parties. [19]
- 2026-06-21: Pentagon labels Anthropic a 'supply chain risk' effective immediately, adding a DoD designation alongside the BIS export licensing controls. [16]
- 2026-06-21: Fable 5 and Mythos 5 remain offline on Day 9; the refund window for API usage credits has closed and international teams report they received no advance warning. [21][22][18][17]
Perspectives
Anthropic
Complying under legal obligation while contesting the directive as technically disproportionate; Washington talks concluded June 16 without reinstatement and the formal BIS letter remains in place.
Evolution: Consistent on technical contest; any reinstatement path involves political accommodation. A single-sourced report of a benchmark-based reinstatement path remains unconfirmed.
Trump / White House
Trump stated on June 20 he no longer views Anthropic as a national security threat; an administration source separately framed reinstatement as requiring an 'attitude adjustment.'
Evolution: Publicly softened from the June 12 national security threat framing; Trump's statement diverges from the formal BIS licensing action Lutnick signed June 17 and the Pentagon's supply chain risk designation, with no announced policy change.
Commerce Department / Secretary Lutnick
Escalated from informal directive to formal BIS licensing requirement; 'that's the point' exchange confirms model suspension was the intended outcome; refused G7 allies and UK AISI access.
Evolution: Consistent on enforcement; his formal actions remain in place even as Trump's public statements have softened.
Pentagon / Department of Defense
Labeled Anthropic a 'supply chain risk' effective immediately, adding a DoD procurement designation alongside the BIS export licensing controls.
Evolution: New institutional actor; the supply chain risk label is a distinct action from the Commerce BIS controls and operates on a different legal track.
Amazon / Andy Jassy
Amazon researchers identified and demonstrated the jailbreak; Jassy personally briefed administration officials in conversations that directly preceded the government action against a company in which Amazon holds a major investment.
Evolution: Consistent; proximate causal role confirmed.
Luta Security / Katie Moussouris
The triggering scenario used deliberately planted fake CVEs on engineered code and is 'the model working as intended' for cyberdefense; published a formal argument that the controls harm US cyber defense.
Evolution: Consistent.
Zvi Mowshowitz
Directive is technically incoherent and politically driven; the stated reinstatement path is technically impossible since vulnerability identification and secure coding are inseparable; Fable 5 is state-of-the-art on benchmarks with GPQA Diamond at 94%.
Evolution: Consistent; June 18-19 work sharpened the technical impossibility argument and added capabilities context without changing the core critique.
Nathan Lambert / Semafor / technology and national security leaders
Lambert argues the episode opens a governance era of technically shallow, politically motivated AI restrictions; Semafor reports China-linked Mythos access as a distinct government concern; technology and national security leaders call the dispute a 'messy public breakup' that harms both parties.
Evolution: The external observer coalition has broadened from Lambert and Semafor to include named technology and national security figures characterizing the situation as mutually damaging.
Tensions
- Anthropic, Moussouris, and Luta Security assess the triggering behavior as standard defensive security work on engineered fake code; the government treated it as justifying full model suspension and formal BIS licensing without publicly addressing the expert counter-assessment. [6][7][4][24][5]
- Trump publicly stated he no longer views Anthropic as a national security threat; Lutnick's formal BIS letter of June 17 remains in force and the Pentagon has separately labeled Anthropic a supply chain risk, leaving Trump's public softening and the formal legal posture in divergence. [15][5][14][16]
- Sacks frames the directive as a targeted patch request with a clear reinstatement path; Zvi argues the stated fix is technically impossible and research confirms perfect jailbreak immunity is unachievable; Lutnick's 'that's the point' exchange and the administration source's 'attitude adjustment' framing indicate the actual standard is political accommodation, not a technical bar. [27][4][12][5][8][9]
- Zvi argues the action was driven partly by political hostility toward Anthropic's leadership; Milk Road AI attributes it to Amodei's non-negotiable refusal to allow lethal Claude use; the government's public framing emphasizes the jailbreak and Chinese model distillation risk. [4][13][14][24][29]
- Lambert predicts open-source AI models will face comparable government restrictions within two years; Just Security argues such extensions would not advance US competitive interests given cheaper Chinese alternatives already in enterprise use. [20][31]
Sources
- [1] Anthropic shuts down Fable, Mythos models following Trump admin directive — Ars Technica AI (2026-06-13)
- [2] Reuters: Amazon’s Andy Jassy was among the people who warned senior Trump officials this week about security concerns ar… — Rohan Paul Twitter (2026-06-13)
- [3] Amazon CEO’s Talks With U.S. Officials Triggered Crackdown on Anthropic Models - WSJ — reactive:fable-mythos-export-control
- [4] The Once And Future Fable #3: Fix This Code — Zvi's AI Roundups (2026-06-17)
- [5] Full Letter From Commerce Secretary Howard Lutnick to Dario Amodei — Rohan Paul Twitter (2026-06-17)
- [6] Quoting Matteo Wong, The Atlantic — Simon Willison (2026-06-16)
- [7] The Fable 5 Export Controls Harm US Cyber Defense - Luta Security — reactive:fable-mythos-export-control
- [8] AI #173: AI Pauses — Zvi's AI Roundups (2026-06-18)
- [9] Perfect immunity from jailbreak is not possible even for the strongest of LLMs. — Rohan Paul Twitter (2026-06-19)
- [10] Anthropic Washington Talks End Without Lifting Export Controls — reactive:fable-mythos-export-control (2026-06-16)
- [11] The US just refused to give G7 allies special access to Anthropic’s Mythos 5 and Fable 5. — Rohan Paul Twitter (2026-06-16)
- [12] "They screwed us": Personality clashes sent Anthropic's models offline — Simon Willison (2026-06-15)
- [13] The Once And Future Fable #2 — Zvi's AI Roundups (2026-06-15)
- [14] Trump just told the world that a week ago he considered Anthropic a national security threat (Save this). — Milk Road AI Twitter (2026-06-19)
- [15] Not anymore: Trump on whether he sees Anthropic threatening national security — Rohan Paul Twitter (2026-06-20)
- [16] Pentagon says it is labeling AI company SF-based Anthropic a supply chain risk 'effective immediately' - ABC7 San Francisco — reactive:fable-mythos-export-control
- [17] RT @PsudoMike: US export control order pulled Fable 5 and Mythos 5 from Canadian teams on hours notice. No warning. No m... — reactive:fable-mythos-export-control (2026-06-20)
- [18] Claude Fable 5 + Mythos 5 are STILL offline. Day 9 of the export control ban. The refund window for usage credits closed... — reactive:fable-mythos-export-control (2026-06-21)
- [19] Technology, National Security Leaders Say Anthropic and Trump’s ‘Messy Public Breakup’ Will Harm Both — reactive:fable-mythos-export-control
- [20] Welcome to the AGI era of AI governance — Interconnects (2026-06-14)
- [21] JUST IN: Anthropic's Fable 5 and Mythos 5 are still down globally after a US export-control directive — reactive:fable-mythos-export-control (2026-06-21)
- [22] 🚨 Day 9 of the CLAUDE FABLE 5 BAN! — reactive:fable-mythos-export-control (2026-06-21)
- [23] The White House and Anthropic may have found the first serious path to restore Mythos and Fable access without pretendin… — Rohan Paul Twitter (2026-06-19)
- [24] Statement on the US government directive to suspend access to Fable 5 and Mythos 5 — Anthropic News (2026-06-12)
- [25] Scoop: Trump admin blocks foreign access to Anthropic's most powerful AI — reactive:fable-mythos-export-control
- [26] Amazon CEO reportedly raised Anthropic model concerns before ... — reactive:fable-mythos-export-control
- [27] American Government Takes Down Claude Fable — Zvi's AI Roundups (2026-06-13)
- [28] Claude Fable 5 and Mythos 5: Capabilities — Zvi's AI Roundups (2026-06-19)
- [29] A new Semafor report says the White House partly decided to place export restrictions on Anthropic’s Mythos over concern… — Rohan Paul Twitter (2026-06-15)
- [30] 🟡 In the crosshairs — Semafor Technology (2026-06-17)
- [31] Export Controls on Open-Source Models Will Not Win the AI Race — reactive:fable-mythos-export-control
- [32] Anthropic releases Claude Fable 5, its most powerful public AI model — reactive:fable-mythos-export-control
- [33] Introducing Claude Fable 5 and Claude Mythos 5 - Claude API Docs — reactive:claude-fable-5-mythos-launch